Wfuzz

Latest version: v3.1.0

Safety actively analyzes 630130 Python packages for vulnerabilities to keep your Python projects secure.

Scan your dependencies

Page 4 of 5

2.2.8

* Fixed bug when repeating requests
* Fixed zip count (thanks Bladefidz)
* Fixed --help in wfpayload
* CSV support (thanks egilas)
* Added mysql error message to errors plugin
* Added raw_content filter language attribute
* --prev flag prints previous requests, useful for comparing results
* Moved source code to src directory and created bash cli executables

2.2.3

New features:

- f switch for storing results in file
- o switch for changing output
- new get_session API method
- Updated JSON printer (thanks to ilyaglow)
- Added requirements to setup.py

Bug fixes:

- bug in the default output not printing filtered results

2.2.2

Bug fixes:

- bug with queues sync
- bug in title plugin
- bug in backups plugin
- bug in full request fuzzing
- headers contain an extra space
- when saving a baseline result
- when setting host header

Other changes:

- Corrected typo in doc
- Additional acceptance tests
- Removed backups plugin from default category
- Removing legacy/old information in messages and help

2.2.0

Main enhancements:
- Improved documentation
- Wfuzz scriptable API
- wfpayload and wfencoder utils
- wfuzz.ini for general and plugin options
- Improved filter language (introspection, operators, functions, FUZZ keyword).
- Introspection using FUZZ[field]
- Allow to run wfuzz from any folder
- Wfuzz could be installed using pip
- Dictionaries are automatically looked for at the specified directories
- Test cases
- Ability to store and reuse previous results

New features:

- req-delay and conn-delay switches
- dry-run switch
- X switch allows to specify method (removed -I switch).
- o switch writes printer output to a file
- p switch for proxy specification supports repetition
- L switch is equivalent to --follow
- zP swtich to specify further parameters to payloads
- u switch for specifying an URL
- Simple/advanced help switches
- prefilter/slice for filtering payloads.
- Improved help for payloads and plugins

Other enhancements:

- Code reorganization (using a queue pipeline for processing results).
- Bugs fixing
- Improved error handling
- Personal plugins could be stored in user's home folder.
- Plugins are stored in directories in separated files
- Improved FuzzRequest object for easier access to cookies, params...
- Plugin runtime/loading errors do not block wfuzz execution.
- A request is repeated a number of times if fails.
- Validate CLI options.
- BeautifulSoup integration
- Plugins can perform their own requests outside the execution pipeline.
- Option to encode space in the URL
- FUZZ keyword for ss/hs switches
- Improved scripts and payloads structure for creating new plugins

Plugins:
- Check for errors (WIP)
- json printer
- burplog and burpstate payloads
- wfuzzp payload
- net ipaddress payload
- dirwalk payload
- title plugin
- Backup plugin
- CVS entries plugin

2.1.5

- Fixed bug on screenshot plugin
- Added CSV printer, thanks Yoginski
- Fixed bug on raw printer, thanks maaaaz

2.1.4

- Added json printer (thanks to Federico)
- Raw printer
- Corrected folder spellings (thanks to l0stkn0wledge)
- Allow wfuzz to run from any path
- Using env python
- IPnet payload
- Fixed bug counting the number of FUZZ words when using the baseline

Page 4 of 5

© 2024 Safety CLI Cybersecurity Inc. All Rights Reserved.